Add Ransomware.YggGuru sample

Go-based ransomware (x64, UPX packed) using AES-256-GCM encryption.
C2: ygg.guru/api/health. Exfiltrates encryption keys via HTTP POST.
Demands 0.5 BTC (1 BTC after 72h).
SHA-256: c3b71a279800e79535b096b110c9cf27ff16b92cf0a18200dd777a9abae9a5e7
VT: 12/72 detections.
This commit is contained in:
Anthony B
2026-03-09 01:46:11 +01:00
parent 8f137429c9
commit d1db24bc89
5 changed files with 3 additions and 0 deletions
BIN
View File
Binary file not shown.
@@ -0,0 +1 @@
01c98f53cc36738945bd2de8e73cfad6
@@ -0,0 +1 @@
infected
@@ -0,0 +1 @@
10d26cd61b49b3ec0fedc7a7d8c0f476613418a1